During package installation, signatures made with algorithms that are disabled or unknown in crypto-policies should be ignored (see the epic for more complete picture).
Further cases are described in https://docs.google.com/document/d/1XMLDgDi6jMPaJNH_vrU5V-BrYbQNs0qmNOnwQBjQE6w/edit?tab=t.0#heading=h.z4wqfmvf7up7 , but these seem to work well for now.
- blocks
-
RHEL-112395 remove workaround for allowing PQ signatures in all rpm-sequoia crypto-policies
-
- Planning
-
- causes
-
RHEL-112730 dnf: Ignore signatures made with unsupported/disabled algorithms
-
- In Progress
-
- duplicates
-
RHEL-112393 return specific code for unknown and disabled algorithms
-
- Closed
-
- is blocked by
-
RHEL-112393 return specific code for unknown and disabled algorithms
-
- Closed
-
- is depended on by
-
RHEL-112730 dnf: Ignore signatures made with unsupported/disabled algorithms
-
- In Progress
-
- relates to
-
RHEL-144414 Return NotTrusted also for missing keys and while importing non-allowed keys
-
- Planning
-
-
RHEL-144410 Return NotTrusted also for missing keys and while importing non-allowed keys
-
- Closed
-